* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Saturday, August 2, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    Sens. Blackburn, Warnock introduce CREATE Act to provide tax relief to music creators – Yahoo Home

    Sens. Blackburn and Warnock Launch CREATE Act to Deliver Tax Relief for Music Creators

    That’s (Political) Entertainment: When Theatre Meets Politics

    Future Script: How Generative AI Is Changing Collective Bargaining in the Entertainment Industry – Jackson Lewis

    Future Script: How Generative AI Is Transforming Collective Bargaining in Entertainment

    The SBA’s live-entertainment bailout was supposed to end two years ago. We still don’t know how $1.5 billion was spent. – Yahoo Home

    $1.5 Billion Live-Entertainment Bailout: Two Years Later, Where Did the Money Go?

    Wall Street Bets: Caesars, Golden Entertainment, Churchill Downs, GLPI, Boyd – CDC Gaming

    Top Wall Street Bets: Caesars, Golden Entertainment, Churchill Downs, GLPI, and Boyd Take Center Stage

    Micro wrestling coming to NE Ohio – Cleveland.com

    Get Ready, NE Ohio: Micro Wrestling Is Making Its Exciting Debut!

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Emory orthopaedic surgeons use robotic technology to transform knee replacement surgery – Emory News Center

    How Robotic Technology is Revolutionizing Knee Replacement Surgery

    Cognizant Technology Solutions Corp (CTSH) Q2 2025 Earnings Call Highlights: Strong Revenue … – Yahoo.co

    Cognizant Q2 2025 Earnings: Impressive Revenue Growth and Key Takeaways

    Revving Up The U.S. Technology Engine – Forbes

    Revving Up The U.S. Technology Engine – Forbes

    More than just a hockey player – Rochester Institute of Technology Athletics

    Beyond the Ice: The Inspiring Journey of a Remarkable Athlete from Rochester Institute of Technology

    Smart Logistics in Warehousing – From Legacy Protocols to Green IoT – How Technology Is Reshaping the Sustainable Supply Chain – Logistics Viewpoints –

    Smart Logistics in Warehousing – From Legacy Protocols to Green IoT – How Technology Is Reshaping the Sustainable Supply Chain – Logistics Viewpoints –

    AI’s race in the dark with China – Axios

    The High-Stakes AI Race: Innovation and Competition in the Shadows

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    Sens. Blackburn, Warnock introduce CREATE Act to provide tax relief to music creators – Yahoo Home

    Sens. Blackburn and Warnock Launch CREATE Act to Deliver Tax Relief for Music Creators

    That’s (Political) Entertainment: When Theatre Meets Politics

    Future Script: How Generative AI Is Changing Collective Bargaining in the Entertainment Industry – Jackson Lewis

    Future Script: How Generative AI Is Transforming Collective Bargaining in Entertainment

    The SBA’s live-entertainment bailout was supposed to end two years ago. We still don’t know how $1.5 billion was spent. – Yahoo Home

    $1.5 Billion Live-Entertainment Bailout: Two Years Later, Where Did the Money Go?

    Wall Street Bets: Caesars, Golden Entertainment, Churchill Downs, GLPI, Boyd – CDC Gaming

    Top Wall Street Bets: Caesars, Golden Entertainment, Churchill Downs, GLPI, and Boyd Take Center Stage

    Micro wrestling coming to NE Ohio – Cleveland.com

    Get Ready, NE Ohio: Micro Wrestling Is Making Its Exciting Debut!

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Emory orthopaedic surgeons use robotic technology to transform knee replacement surgery – Emory News Center

    How Robotic Technology is Revolutionizing Knee Replacement Surgery

    Cognizant Technology Solutions Corp (CTSH) Q2 2025 Earnings Call Highlights: Strong Revenue … – Yahoo.co

    Cognizant Q2 2025 Earnings: Impressive Revenue Growth and Key Takeaways

    Revving Up The U.S. Technology Engine – Forbes

    Revving Up The U.S. Technology Engine – Forbes

    More than just a hockey player – Rochester Institute of Technology Athletics

    Beyond the Ice: The Inspiring Journey of a Remarkable Athlete from Rochester Institute of Technology

    Smart Logistics in Warehousing – From Legacy Protocols to Green IoT – How Technology Is Reshaping the Sustainable Supply Chain – Logistics Viewpoints –

    Smart Logistics in Warehousing – From Legacy Protocols to Green IoT – How Technology Is Reshaping the Sustainable Supply Chain – Logistics Viewpoints –

    AI’s race in the dark with China – Axios

    The High-Stakes AI Race: Innovation and Competition in the Shadows

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Businesses disconnected from realities of API security

September 30, 2023
in Technology
Businesses disconnected from realities of API security
Share on FacebookShare on Twitter

Business leaders feel confident they’ve got a handle on API security, but at the same time, incidents are through the roof, according to a report

Alex Scroxton

By

Alex Scroxton,
Security Editor

Published: 28 Sep 2023 14:00

The spread of application-driven businesses has elevated application programming interface (API) security issues to a pressing concern, with the number of incidents arising from vulnerable APIs through the roof and a majority of organisations planning more investment to keep up – however, at the same time, there exists a puzzling gap between how confident security leaders are in their API security tools and how often their APIs are being attacked.

This is according to a study of over 600 leaders across the UK and US, conducted for Israel-based API security specialist Noname Security.

This is the second year running that Noname has produced the report, titled The API security disconnect, and as the title suggests, 12 months on from the original study, its researchers found evidence of this strange and apparently growing disconnect among respondents.

Last year, 61% expressed confidence in their dynamic and static application security testing (DAST and SAST) tools, and this year, Noname found this had risen to 94%. However, 78% said they had experienced an API security incident in that time, up from 76% last year and rising to 85% among UK respondents.

Noname chief technology officer Shay Levi suggested this lack of correlation suggested something, somewhere, is not quite clicking if so many organisations can be happy with their tools while experiencing elevated levels of cyber attacks incorporating some form of API exploitation.

Levi suggested there was an urgent need for this disconnected to be addressed. “The continuing increase in reported API security incidents over the past two years demonstrates that this is not a fleeting trend, but a pressing reality that organisations must deal with and prioritise,” he said.

“APIs are indispensable in today’s modern environment, but everyone is worried about ransomware, phishing attacks and data breaches. This research validates why security leaders must continue to prioritise API security.” 

Why is API security important?

API security is moving up the agenda because of the sheer ubiquity of APIs around the world – their usage is currently growing at about 200% per annum. “We say there is no piece of code written in the past seven years that doesn’t expose or consume an API,” said Levi.

However, he continued, APIs are also a clear source of risk for several reasons – they are mission-critical to most large organisations; exist in a scattered environment across multiple public clouds, gateways and regions; and crucially, their use puts security teams and developers in conflict.

Cyber criminals being wise to such matters, APIs have therefore become a major attack vector, with many high-profile security incidents and cyber attacks involving their use – perhaps the most significant of recent times being the 2022 attack on Australia’s Optus, which exposed the data of millions of the telco’s customers.

Noname’s approach to API security – which it describes as “complete and proactive” – is predicated on three pillars:

Posture Management – uncovering vulnerabilities and misconfigurations to speed remediation and ease compliance;
Runtime Security – detecting and blocking API attacks with real-time traffic analysis powered by machine learning;
API Testing – finding and remediating API vulnerabilities during the development cycle.

Levi, an Israeli cyber intelligence vet and former Meta software engineer who co-founded Noname in 2020 – the name or lack of came about because he and his co-founder couldn’t think of anything to put on the legal documents incorporating the company – claims that most other API security specialists are still focused too heavily on the middle, Runtime pillar.

“For enterprises, it has become more important to be proactive, which means analysing what is already out there and finding a gap to close it before it becomes a vector for a cyber attack,” he said.

The model also neatly addresses OWASP’s top 10 risks to API security. Noname said traditional API security tools, mostly web application firewalls (WAFs) and API gateways, are not really relevant in addressing these issues, as chief marketing officer Mike O’Malley explained.

“Prior to Noname, when you would talk to a CISO [chief information security officer] and ask if they had API security, they would say they had a gateway or a WAF,” he said. “The reason Noname exists is because those products weren’t designed for modern API threats.

“Because modern API threats are so rooted in the business logic approach, WAFs and gateways, while they served a purpose, just weren’t built for these challenges.

“The root of the disconnect is that they [buyers] think the vendor can address the OWASP top 10 with a WAF, which is less and less the case,” said O’Malley.

Happily, the report also found clear evidence that security leaders are making API security more of a priority than they did 12 months ago – 81% said this was the case (84% in the UK and 78% in the US) – and the data also clearly suggested the impact of the increased volume of API-linked incidents, such as loss of reputation and employee or customer churn, was hitting home.

Brits behind in some areas

Some of the report’s other findings included the insight that UK teams tend to have less visibility of the APIs in their inventory than American ones (70% to 74%), but that Brits tended to do better at knowing exactly which of these APIs returned sensitive data (28% to 19%).

US organisations also seemed to do better when it came to API testing, with 19% undertaking API security testing in real-time compared with 17% in the UK, a reversal on the 2022 report, when the figures were 14% for the UK and 8% for the US.

Read more on Cloud security


How API gateways improve API security

MichaelCobb

By: Michael Cobb


Web application firewall (WAF)

KinzaYasar

By: Kinza Yasar


4 cloud API security best practices

DaveShackleford

By: Dave Shackleford


Claroty unveils web application firewall bypassing technique

AlexanderCulafi

By: Alexander Culafi

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : Computer Weekly – https://www.computerweekly.com/news/366553672/Businesses-disconnected-from-realities-of-API-security

Tags: Businessesdisconnectedtechnology
Previous Post

Automated cloud IR: Empowering cyber with AI-powered playbooks

Next Post

US lawmakers write to AI firms about ‘gruelling’ work conditions

Women’s Voices Are the Only Way Forward for Climate Change Solutions: ‘As Women, We Have to Stand Up and Back Up Women’ – Ms. Magazine

Women’s Voices Are the Only Way Forward for Climate Change Solutions: ‘As Women, We Have to Stand Up and Back Up Women’ – Ms. Magazine

August 1, 2025
“A Danger to the Entire Planet”: Amid Deadly Extreme Weather, Trump’s EPA Rejects Climate Science – Democracy Now!

“A Danger to the Entire Planet”: Amid Deadly Extreme Weather, Trump’s EPA Rejects Climate Science – Democracy Now!

August 1, 2025
Ten Lifestyle Group Announces Total Voting Rights and Share Capital Update – TipRanks

Ten Lifestyle Group Announces Total Voting Rights and Share Capital Update – TipRanks

August 1, 2025
Five different countries take gold medals on a wide-open day at the swim world championships – AP News

Five Countries Triumph in a Thrilling, Unpredictable Day at the Swim World Championships

August 1, 2025
US employers slash hiring as Trump advances a punishing trade agenda – AP News

US Employers Slash Hiring as Trump’s Aggressive Trade Policies Shake the Market

August 1, 2025
Duffer Brothers and Jerry Bruckheimer Join Program for Entertainment and Technology Summit – Variety

Duffer Brothers and Jerry Bruckheimer Join Forces for an Exciting Entertainment and Technology Summit

August 1, 2025
Alabama schools enhance mental health support as students return to the classroom – WBMA

Alabama Schools Ramp Up Mental Health Support as Students Return to Classrooms

August 1, 2025
Platts­burgh town su­per­visor eyed for Dem ticket in N.Y. Assembly special election – Spectrum News

Platts­burgh town su­per­visor eyed for Dem ticket in N.Y. Assembly special election – Spectrum News

August 1, 2025
Emory orthopaedic surgeons use robotic technology to transform knee replacement surgery – Emory News Center

How Robotic Technology is Revolutionizing Knee Replacement Surgery

August 1, 2025
Carlos Correa trade grades: Astros score ‘A’ for stunning deadline deal, Twins get their salary dump – CBS Sports

Carlos Correa Trade Grades: Astros Land an ‘A’ for Blockbuster Deadline Deal, Twins Successfully Shed Salary

August 1, 2025

Categories

Archives

August 2025
MTWTFSS
 123
45678910
11121314151617
18192021222324
25262728293031
« Jul    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (749)
  • Economy (774)
  • Entertainment (21,652)
  • General (16,230)
  • Health (9,811)
  • Lifestyle (782)
  • News (22,149)
  • People (775)
  • Politics (783)
  • Science (15,987)
  • Sports (21,270)
  • Technology (15,752)
  • World (757)

Recent News

Women’s Voices Are the Only Way Forward for Climate Change Solutions: ‘As Women, We Have to Stand Up and Back Up Women’ – Ms. Magazine

Women’s Voices Are the Only Way Forward for Climate Change Solutions: ‘As Women, We Have to Stand Up and Back Up Women’ – Ms. Magazine

August 1, 2025
“A Danger to the Entire Planet”: Amid Deadly Extreme Weather, Trump’s EPA Rejects Climate Science – Democracy Now!

“A Danger to the Entire Planet”: Amid Deadly Extreme Weather, Trump’s EPA Rejects Climate Science – Democracy Now!

August 1, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version